FRIGN writes:
> Wait a second: Don't forget I also do a shell-escape of the incoming
> string.
I did not see that, however that still doesn't really resolve the
problem. You don't know which shell the user is using.
This does not resolve all problems, anyway. Consider `foo 'bar %s'`.
- application/pgp-signature attachment: stored
Received on Sun May 04 2014 - 13:48:38 CEST